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Technological Field Of Th a invention 

computer „etv,or k . More part , cu|ar , yi , he ^ re|ate te a sywem ww(:h ^ ^ 

persona, cre dit oa. Nation „ no , „ risk of be , ng ^ , ml8appropr|ated orsto(onandthe 
merchant may ba mora confident that the purchaser Is bona fide. 

■ is we,, k nown ,or buy ers of m erchan d ,se to access the g ,oba, Center ne^o, common, 
referred to as the htternet, a par, of which * the Wor,d W!de Web, for the purpose of search,n g for 

"t^**^^^^^ ^^^.^ 

Numerous patents hav , already bean grartted ^ teach „ ^ ' ^ 

secure commerce, crad,, card transacts carried out over the .nternat. Exan.p.as 
P«ents ,nc,ud.. U S Ps tWt N osV S , 6 7,,7, t0 ElgamaI , 5 , 727 , 163 tQ Bezos, 5^822,737 to" ogram 
M Um .o - a, a,, and US Patent N os. S.7, W14 and us $ , 909 , 492 , ^ „ ^ J ^ 

- Cosures o, which are .ncorporated b y reference herein for provid,n g bac kg round and as 
md,ca.ive of the state of the art prior to the invention herein disciosed. 

"os, o f the d|sc , osed sys(ems haye ^ d(sadvao(a9e (ha( ^ ^ ^ ^ ^ 
~ intorntauon over unsecured netwo* routes and iines to, each transaction. A „o„ s h 

ed card misappropriation and there is «. p sy ebo,o g ,ca, comfort 3 iven to potentia, use. b y 
the.r knowing that encryption is being used. 
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Genera,,, spea k ,„ 9 , th , lnternet „ . n6twork „, ^ ^ ^ ^ ^ ^ 

variety o f communication, „ nes includlng , elephone „ nes cawe te|evfeion _ ^ 
and ,he IIKe. Interne, serv.ce providers (hereinafter ,SP.., provide , n , „ nlt t0 the maln backbone 
o f the ,n„rne, tor sm a„ end users. The account fo r the end user ,s estahhshed ,„ , h . nomia , 

man„erusua„y hy pro v,d,„ 9 credit card Intomtatlon t0 u,e ,SP hy conventional such as by 

voice telephony, fax transmission or cheek. ,„ most ,SP-e„d user re,a,,o„sh,ps, th e ,SP has heen * 
9 iven cred,, card or other cred,, account ,„ torma „ on , wh.ch ,^ atl6n ,. on „„ w| ,„ , sp 
evanah,. ,o ,h. ,SP, compute.. ,„ „ tum for receIvj „ g ^ ^ ( . p ^ § ^ ^ 

.he for the end-user, use. The end-user ( or subscriber, Is pr0 v,ded wfth ldentmcatlon 

codas tor d,a„,„ 9 dlrect , y lnto the |sp , commm ^ ^ ^ ^ ^ ^ 

software, browser software, elertronlc mai, software, and the IK.,, or do,„ 9 so Knecessa*. 

Most P urch conduced ,„ ,o,,ow,n g manner: a purchaser us,n 9 a hrowser app„ca«on 

on h,s ,o=a, c„en« computer connect W, h,s compute,, modem to . ^ ^ ^ 
Prov, d er (hereinafter ,SP, a„ d n,a k as connections lh erethrou 9 h to various Wet, s„es, ,„,er„e, 
server ,oca„o„s e M , 9 „ed a U RL (U „„ on „ p_ Locator) ^ ^ ^ ^ 

- merchant. a„ d the ve„dorusua„y requests pavnteni hFone ot severa, methods, 
usually mcludes payment by proving credit card information. 

Accordi„ 9 to surveys and other marxetln, data, there elways has haen and there s«„ exists a hi 9 h 
Percenta 9 e o, *. popu,a,ion which is detered from p„ rehM)ng merchandiM ^ _ ^ 
nternet. Th ,s ,ar 9 . P opu,e.,on apparently ,e are that , desplt6 „ ^ a( ^ 
c W o gra phy p romlsed by lhe vendore , ^ m exis(s possiwl|ty tha( (heir cred|t aMoun( 

■"formation w„, he Intercepted on-,i„e hy a third party computer h.Ccer and used „,e 9 a„y, a, 9 rea, 
expense and trouble for the cardholder. 



An additions anxiety-inducing factor related to merchandising 



over the Internet, or e-commerce, 
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is .ha. the merchant cannot always be certain ,„„ Just bcea „ se „, „ as ^.^ ^ ^ 
.nfomation, that he «■ actuaiiy be paid for the mercband.se be ships. After „,. credit card fraud 
and,or ,he« occurs re g u,ar,y and may no, be caught in „ me to stop ,be order , rom being shipped 
When ,be cardboider discovers the thef, and stops .be card, * may be lo0 1>ie ,„ 
-over bis property. A, ,„e veo, ,„„ sllua0on , eads , 0 u „„ ccessary aggravatio „ ^ 

wasted resources for the merchant, credit carti company and cardholder. 

Summary And Object, T f, e Invention 

Thus, * is ,„ objective of tbe present invention to provide , system and method for potential 
.Mine buyers of mercbandise marKeted over the interne, t0 pay for th0 se purchases with 
mmimized exposureto , he risk ofcredi, card ,h^t by electronic inlercepoon. 

.s a furtber objective of *, invention to provide , m ecba„,sm for facing commerce which 
Will increase tbe confidence of , be consuming public ,„«,, safety of such transaction,. 

« .a s„„ a furtber elective o, tbe Invention to provide a mechanism for facilitating commerce 
Whlcb w„, increase the confidence „,™ vendors may ship «he purchased product oTde^er 
the purchased service without fear of the payment being provided fraudulently. 

« -s ye, a further objec, o, th. presen, invention ,o provide , site-specific and computer-specific 
.denbflcahon confirmation system for use in a secure electronic purchasing system. 

These obiectivea and others and others no, specify enumerated herein are achieved by ,be 
■nvenhon disclosed herein which comprises a system and me,bod for providing payment to an 

embodiment, ,he me,hod takes advantage o, ,he existing business relationships between ,he 
member computers which form tbe struoure of the Interne,. 



Utility Patent Application 
Docket No. SAFE 3-01 -US 



Each time , subset signs in «o the iSP's compute* ,or an online session, «ne subscriber is 
assigned ,n Interne, Protoco, (hereinafter »,P", address. The subscriber* computer .ransmhs 
messages „ h ,ob are received by the , SP computer and reiayed ,h ro ugh ,h. ,P address and ou, 
onto the internet to the uitimate intended recipient computer. Ourin g the entire time the on-,i„e 
session in p TO9ress , „ address does no , ^ fe ^ ^ ^ 

intension. By monitoring and occasions.,, re-verbying the, ,h, subscriber's computer is sdi, 
the subscriber. 

One embodiment of the present invention taKes advantage o, th e inornate reiationship which is 
re-created every time an interne, subscribed computer goes oniine and signs ,„„ hls lsp , s 
computer by assigning ,o ,he ,SP computer ,he function d, CeSringhouse and acdve intermedia,, 
between the subscdbe.s computer and ,he vendor's computer. A subscriber computer signs ,„ 

™* * "cognized and assigned an ,P address. When «he subscriber 
•dentins merchandise or services a, a vendor, website which he wishes ,o purchase, he sends 
Programming ,o ,he wehsite which seieete ,be items and ,„s,ructs the vendor's computer ,o 
3enerate 2 ^ ,h0ri2a "°" -~ «*•* * to the ,SP computer. The purchase 
authorization request contains informaUon about the merchandise ,o be purchased, idendfying 
information abou„he proposed purchaser, some o, which is the identifying informal assigned 
by the iSP ,o ,he subscriber. The ,SP confirms internaify tba, the subscriber is s,i„ signed ,„ to 
the ,SP computer system- by verifying the identic of th6 computer curren „ y ^ 
*ommu„ica,,ng through the ,P address. When satisfied ,ha, ,he subscriber is s ,i„ oniine, the ,SP 
compute, generates and send „ to the subscrlber , s computer ^ 

«< «he order fdr the merchandise. Upon receipt horn the subscriber, computer o, the 
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confirmation, the hp 8enerates and transm|ts „ ^ 
•he order and provide, , confirmation number, e 9 ree ing ,o pay m involce whicn vendor . s 
computer subsequently generates and present ,„ ,he ,SP compute, ,SP computer then uses ,„. 
subscribe,, credit card information and presents an invoice a 8 ai„s, the credit card account to be 
sent through normal channels. 



in anotber exempiary embod.rn.nt of the present invention, tba ISP does no. serve as tba credit 
giver or transaction v.ri„er, 8 ua ra „,or. This function is provided by a ban« or vendor „«, whom 
the subscriber a, rea d y has a credit account, and who has an oniin, presence, .... has a 
transaction server connected ,„ the Interne, which can participate in the tmnsaction as i, is 
carried out by the subscriber/consumer. 

Brief Descri ption Of Th» hr*,,,..^ 

For better understanding of the invention, the ,o,,ow,„ g drawing am inciuded for consideration ,„ 
combination with the detailed specification which follows: 

Hg. 1 shows a buyer com pu ,. r i „- commilnKstlSn -- witl , . ^ v| , ^ 

wherem buyer computer is initiating a purchase transaction; 

Fig. 2 Shows the vendor computer communicating with the ,SP computer to re q ues, authorization 
to complete buyer's requested transaction; 

Fig. 3 shows the ISP computer confirming tha, correct ,P address is active w„h buyer's computer 
and requesting confirmation of buyer's transaction; 

Fig. 4 shows buyers computer responding to ISP computer's request for confirmation; 
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F.9. 5 shows ,SP computer's transmission of a con„rma,ion code and invoicing ,„s«ruc«ions to 
vendor's computer; 



Fig. f shows a block diagram Illustrating another exemplary embodiment ., the present invemion; 
and 



Fig. 7 shows a blook diagram Illustrating another exemplary embodiment of 



the present invention. 



Detailed Description Of Th. Fy m D | atv Emhnri i m „„ te 

As was mentioned hereinabove, ,„ one exemp,ary embodiment of the invention, t he credit account 

for the subscriber (also referred «o a d user or Buyer, is estabiished ,n the norma, manner 

usually by providing credi, card information to the ISP by conventional mean,, such as by voice 
telephony, fax transmission or check. ,„ most ISP-end user relationships, the .SP has been given 
credit card information and this information is on file „i,„ ^ iSP and aviiabie to the ISP's 
compute.. ,„ retun, for receiving payment, the ISP provides a gateway to the Interne, for the 
end-user's use. The end-user ,or subscriber, is provided w„h software means and identification 
.codesJor^-direcdy Into the ISP, computers. TH^i^^^-^ 
P'Otoco, (hereinafter «, n address to the subscriber for use dulring the patticuiar on*, session 
- progress. The subscriber's computer transmits messages which are received by ,h, ISP 

-cpien, compute, During the entire time the on-line session In pro g ress , lhe 1P address ^ 
no, change and is ,hus avaiiabie as ideating information. By monitoring and occasionaliy 
ra-verlfying that ,he subscriber's computer is s,i„ on-line a, the assigned ,P address, the ,SP can 
confirm the, certain activities could be attributed to the subscriber. 

This exemplary embodiment of ,he present invention takes advantage o, ttt, intimate rsiationship 
Wh,cb is re.rea.ed every time an Internet subscriber's computer goes online and signs in.o his 
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ISP's computer by assigning to the ISP computer the function of clearinghouse and active 
intermediary between the subscriber's computer and the vendor's computer. 



The method is described with reference to the drawings described hereinabove 



as follows: 



The ISP „,so referred to hereinafter es e "Clearinghouse Computer", le assigned a unique lsp , D 



code. 



As described hereinabove, the iSP's subscriber or customer (hereinafter "Buyer", has gained the 
ability to access the interne, network ftom his remote computer by opening an account with ,SP. 

The Buyer has provided credit cart or other payment information ,o ,h. ,SP when the account was 
opened, by conventional., „x, voice telephony or any Cher acceptable method including 
known methods. In exchange. Buyer receives from ,h, iSP certain software and Identification 
codes which permit Buyer's computer to communicate with the , S p. s compute, and to negotiate 
(request and obtain) an IP address. 



A. time of firs, sign-on, Buyer's Compute, (hereinafter referred to as «BC", transmits ,o BC a 
Buyer-ID code which is electronically recorded or written into a file (e.g. a cookie file, on BC. The 
Buyer ID code could be generated by any number of methods known in the art for gene ra .ing 



identification codes. 



When Buyer activates his BC ,o log onto ISP network (BC provides standard log* Infomation to 
ISP,, ISP also reads and logs In Buyer-ID code and assigns IP address for curten. session to BC, 

BC connects via ISP porta, with Merchant Computer ,MC, and Buyer selects desired merchandise 
and further selects ,o pay using Security program manager payment method disclosed 
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herein below. 



B U ye,,D an d BC .. IP address assigned for curren( Mss|on provWed fo ^ programmed to 
request and receive said information 

MC is programme. to use Buyer-ID an d BC's purren, ,P a dd ress aiong wBh mformation suc „ M 
d es,red ,,em ,0, cos.ent, neme ,. r3 e„,ra«i„g an elKtton|c purehas9 , nqu ,^ whfeh |s transm|M8d 
through the network to ISP. 

.SP ,s programmer, such ,h,< upon race*, of purchase Mc , lsp uses ^ 

IP a dd ress s„ d Buy a , 1D , 0 determl „ e wlthin lsp , s ^ ^ ^ ^ ^ ^ 

onlrne at tha address as sl 9 „ ed a . ,he ba 3 lnnln B of ,hs onllna sasslon. 



If -SP computer is unabte to confirm the, BO is stii, connect to ISP system a, the ,P addre s S 
expactat,, or fhet the BC ,P a dd rasa 8 ,ve„ hy M C is d ifferen, from that as S i 8 „e d hy ,SP to BC than 
a negative message la genanatet hy ISP* computer an d uenemi«e d to M c .hereby resuiting ,„ , h e 

be programme., ,o con d uc, other tee* or inepec, for omer neceasaty con d „,ona ,„ an a«emp, ,o 
verify the source of the order placed with MC. 



« BC ,s d a te ,m,na d ,o be connaCeC ,o ,SP a, corrac a dd raas, ,SP sen d s massage coning 
de^iis ofpurchese ingulryto BC eeKing Buyer ,o input confirmation of d e te „a o, purchase 
desired to be transacted with MC. 



Upon inpu, o, confirmation comment, by Buyer ,„,o BC, BC generates an d fransmHs a 
confirmation to ISP. 
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0„ receipt o, Buyer's confirmation, , sp then g ^ ^ ^ ^ 

Number and instruct MC ,o proceed w«h m„„g B „ V e,e order and a,so ,o generate and toward 



an invoice to ISP. 



The invoice to the ,SP can be generated electronic,,* and ,r,„s mitt ed d,rec,, y to iSP's computer 
instantaneous,, ,dur,ng the same session, or MC might wa« „„,„ re „,vi„g P rogra mm ,„ g 
indicating that the order has actually been filled. 

Receipt o, the invoice by ,SP, confer then causes the ,SP computer to generate and transmit 
eitherelectronicaiiy orthrough convendona, maana, an instruction to Buyer-a 
company to debit Buyer's account for the amount o, the purchase. Aiternativeiy. ,SP oouid bin 
Buyer directiy or any other reimbursement arrangement, e.g. through a „ insurance fund, is 
contemplated herein. 

m another exempiary embodiment o, the present invention, either the iSP's server acts as the 
security coordinator or a biac box (hereinafter -ISP Tooibox", is iocated a. the ane of the ,SP 

" 71,8 «^*^-«»<^-«r««^^^ aecuriV coordinator 

functions are carried out by an ISP Toolbox. 

Physical Placement of ISP Toolbox - 

* 'his exempiary embodiment, t h e ,SP Tooibox is iocated a, the physics, sit, of the ,SP, the ,SP 
Tooibox-is connected to Ute phone or communication Hues coming ,„ to the ,SP sarver directly 
Tom users on dn. aide o, ,SP server. The ,SP Tooibox ia eiso connected to iines going outto me 
-nterne, «v„ the modem baa.et, from the ,SP server. The ,SP Tooibox does no. interact directiy 
- <Ha ,SP serve, Per the moa, par, ,, monitors incoming and outgoing traffic, waiting to taxe 
over those communicatee shouid a aecurity reiated transaction be ceiied for by a home user 
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The ,SP Toofbo, „ m . min , sereer , ^ , o , he s6curi(y ^ ^ to . ^ 

ISP Toofbox is provide. wral programmin8 ^ ^ ^ ^ ^ ^ ^ 

properforms andfordate t0 either a particlpa „ ng home ^ ^ ^ ^ ^ _ 

« - P ro P osed lrantacflon . Th9 fo| , OWIng sMnario describM wha( Mn ^ ^ ^ ^ 

for euch a security related transaction Is detected by the ISP Toolbox. 

As w,„ be further described heteinbeiow, ,„ another eXempiery embodiments Tootbox „ no, 
located at the ISP but at the site of another credit provider. 



1. Application Pro cess - This process oniy needs to occur once tor each acc/oun, which a 
user might have: 



a) ,n orderto begin participation i„ ,h. secure faction system insteiied by his or her 
ISP, a User a, home connects his home PC wWl the server o, the ,SP „i«b w „ om ,„ a home 
userhasestebiishedan.SP.ser^ietionship. Upon estebUshin, direc, diei-up 
co m n,unica, l ohs. w , UHhe , S p server, the bom. user activates a «. on ,SP Website ~ fe 7 " 
•xanrpie by Coxing , button presented on hie ore lng hls lnpul ^ wh|ch ^ 

the ,SP Tooibox ,o use,s request ,or ,n appiication to enroii users PC in systen, o„he 
invention. 



b) The ISP rooibox suppiies an app,y.asp ^ de no,es an active server pegs, 
brow,., appiication, such as Netecape Company. Navlg Wor Communica ,^ ^ 
applicetions or Microsoft Corp,s interne, Expiorer* appiicafions. The user* in the 
requested informal ,„,o , h . form and clicxs on a submit button on his dispiey The 
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apply.asp submKs , new appiicion record beari „ g ^ ^ ^ ^ ^ ^ ^ ^ ^ 
Toolbox which i„ turn notifies the .SP, for ex,m Pl e byway of an ra , ^ . URL „„ k ,„ 
.ho appiicaflon form, that a request f„, credi. has been made. A credit decision on .he 
app,,oa«on iS ,hen made eifher eiectronicaliy a. the lev., of the ,SP based on predefined or 
by a human cred* manager. The ,SP vermes the username and e-mail address of .he user 
and sefs a credit iimit. The account is marked as "activated. by the setting ofan approved 
credit iim,, which lnlliates promotio „ ^ |sp ^ ^ ^ ^ ^ ^ 

status to active account status. 

!) A *« fo "°'«n»ccoun.,ni,,a.e,aproc M sby„ h ich,h. 1 SP,oo,boxgenera. M aU.Dor 
unique identiflcauon for the user. The >SP teoibox men generates and bansmHs an e-mai, to 
•he user which contains , .Ink to a regisUadon URL When ,he user opens the e-mai. and 
clicks on the regisuadon URL, i, downioads and acuva.es an instaiiation page and a sys«e m 
hlefrom .he ,SP Toolbox, containing , Locetor which comprises an <OBJECT> teg the teg 
pointing to a GUiD (Unique ID generator) and , oodebase. Th, Locate, is ins„„ed in ,h. 
users browser cache and an instence thereof is biown Inside .he HTML page objec, moduie. 

The ISP Toolbox asks user «o .nspec. his/her P erso„aLda fa ,,o.choose a peraona, password 
and Cick an icon or bunon ,o finish acdvauon of ,he new accounL Cilcking .he buhon 
causes .he oneubmi, handier which came as par, of .he Locator, .0 ater, runn ing a scrip, 
which .axes .he user in.orma.ion, UID and further information abou. .he users computer and 
sends these back to the ISP Toolbox. 

Stupid agent - directs user to most recent client software. 

Client software - encryption and decryption and retrieving data from wallet kept in 
registry , i.e. . 



Generation of GUID by Black Box 
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5) Describe purchasing session. 



a, on*. user.goe, ., Website of merchant „ si „ 8 any Web Browser Program a „ d ^ 
merchandise to purchase. 

b) User is offered methods of payment and seiects option button for "SECURITY 
PROGRAM MANAGER" or "SAFE PAY OPTION". 

C) ^ AUt ° fetCh Pr ° CeSS ' a " 0nCha "9 e ~* handler in User's software prepares and 

sends request to Security program manager server for Session User Identity. 

d) Security program manager server redirects request to user's black-box equipped ,SP . 

e) ISP black box searches its files and returns user's identity. 

f) A user form is generated by user's computer and populated with user information 
including identity returned in step fe) from ISP black box. 

9) The form is submitted, together with a challenge which is forwarded to. the vendor 



server. 



h) Vendor server runs a scrip, that calls the Security pmgram manager server's 

8 e.Ga.ePass.asp, thereby <ransmi«i„g tb. Session User identity, ,P (user's current , p 
address), Sum and the challenge. 

•) The Security program manager center redirects the vendor server's call to the ISP 
identified by the IP while the user stands by. 

■) The ISP-s getGa.ePass.asp runs a check of the IP provided as par, of .he vendor 

server's call agains, the internally known IP to make the sure that is where ,he user reaily is 
lagged in. „ ,„e IP ,es, faiis, the vendor server receives a rejection notation from .he 
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ISP server and the transaction is terminated. 



ft « the ,P ,es, succeeds „.e. «,, user really ,. connected ,0 ,„. correct IP address, tne „ 
the ISP challenges the home listener . 

The example discussed herein and demonstrated by the Figures are merely tor i„u S ,ra U ve 
purposes on,,. Variadons and modlncabons o, the disciosed invendon ,„ a ma n„er „a„ wKhln 
•he axil, of the man of average skI „ ,„ a „ are comemp|ated and ^ |mended (o ^ 

encompassed wKhln ,h, scope and spirt, o, the Invendon as denned by the claims which follow. 

For example, ,„ another exempt embodlmen, B,e ISP ,s no. the slto where , he Toolbox resides 
Whh reference to F, g . r, The Toolbox could be physically located at the site of the credit provide, 
(■•Creditor", e.g. on.ine-enabied ban, credit card provider or other ah^-cand or charge account 
provider (including bricK.„d^o rt ar retailer's „„ h an onllne ^ ^ „ ^ ^ ^ 
commun,ca«,o„ through nornta, channels „,,h Credos «r=ns,C.„. ( server. ■„ , his case 
rSP wouid no, b. an acdv. pa rt of the punchase transaction, o,he„h,„ ,„ , he usual Known way by 

™ " " aCCCSS to *— ■ — « -Pechled-hereinbelow, the res, of ,he 
P-ocess pnoceeds s„bs te „,ia„y as decribed hereinabove. Specially, ,„ „,„ MemplaIy 
embodiment, ,he account is set up as follows: 

D -n order ,o subscribe ,o or begin pa rt ,c,pa,,on in ,he secure hansacion S ye,em in which his 
Cred,,ora,so participator User a, home connecto his home PC whh ,he ,„,erhe, via an ISP 
Uponestobiishing communicadons wim ,he Creditor server, user ac,,va,es a ge,app„ca,io„ 
m. en Credos Websne, tor exampie by Coxing a burton presen,ed by user* browser using 
hfc input device, which alerts ,he Creditor Toolbox «o use,s re q ues, to, an appiicadon to 

enrol, users PC in sys.em of ,h, InvenHo, The sys,em is specific to ,h PC which is 

enrolled as will be further elaborated hereinbelow. 
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2, The Credos Toolbox supp „ es an app|/ Mp p Mp „ dsno( cHve ^ ^ ^ ^ 

,he browser appncaUon. The usar nUs tha request6d ^ ^ ^ ^ ^ 

, "°" ,d " ame ,e " her " • "Ouested credl, „„.. and an e . mai , 

address which Is accessible from ,ho PC, ,ap«op or o,her Con, CO mpu,er from whle 

wishes he able ,o make purchases. The appty.aap also , ncludas 

whfch is ac,,v„ed whe Cote on «he submi, or sign up button on hla dlsp(ay A , 

Pom,, the epp V .a 8 p "reads" .gnoses whe,her the user's PC has !,„,„«■ certain component 
which can be used for gener«,„g a fingerprint «,e for helping ,o verify users PC's WenUty ,„ 
future functions. CSrtain hasic ,nforma,ion is "read" and ls transpar6n% aubm|t , ed by ^ 
apply.asp along „Hh the user-prov, d e d Information in the form of a new appiication record 
bearing the user's IP a dd ress back to the Creditor's Toolbox. 



3) The application is processed by a ered„-decis,on maker. This may be either don. 
automatically hy Credit, sewer based on pregnable parameters and access to ueer's 
credit particulars and the particulars provided in the 



application, or by a human credit operator 
who manua % opens the application mcord by accessing the Tooibox Administration Center 
Website and selects theoptlon to ^2^^^^^..^^. 

on the sppllcauon is made and a credit ,imi, Is se, or me applicaUon is re,ec,ed. „ rejected, an 
-mail is generated to inform user. 

4) If the application is accepted, the account is marked as "activated- by the setting ofan 
approved credit limit which Initiates promotion by the CredKor Toolbox o„be user record from 
application stems to acuve account status. Activation of the account also initiates a process 
by which the Creditor Tooibox generates a fmgerprtn, ffle including a unions IdenMcabon 
(■•UID-, for the.user using ,he .denying characteristic, of user's PC which were diagnosed by 
•be app,y, S p and accompanied the application (e.g. CPU ID number, hard disk 
amount, o, RAM, BIOS vers.on and type, etc.,. User is nettled via an e^al, sen, to ,he e-ma„ 
addtess specified in ,h, app„ca,,o„. The e-ma„ Incudes a notification of wha, credi, „ne has 
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been se, and „ „ s0 inc , udes , hypenm , g "Pleas^IickJ^^ 

When user * on the „„ k which h als0 . registration ^ „ ^ ^ 

Installation page and system flies from ,„e Credits Toolbox, including a Locator which 
comprises an <OB JEC T> tog, , h e teg pointing to a GUID (Un , que ,„ ^ ^ 

(enctyption and daemon programs, a handshake code generating program, and . challenge 
generatmg program are among ,h, files downloaded for Mure us. by the user PC; these may 
atso be usefu, for retrieving encrypted d«. from the wallet kept ,„ user's PC registry, The 
Locator ,s instaiied in toe users PC and an instance thereof „ biown inside the HTML page 
object moduie. The above stop occurs oniy after toe ,i„ k activates a ftle which reads toe 
■dentfty numbers of toe various components o, user* PC ,o make su re toa, toe user PC is toe 
same one from which toe appiication was gene ra «ed,„P,r, grapn211erelnabove 
appears to be the same user PC, then toe rest of the download takes place. 

5) The creditor Toolbox asks user to fill in her selected password again and «o fill ,„ her 
persona, data, and Cick an icon or button to finish activation oftoe new account Coking toe 
button causes toe onsubml, handierwhich came as par, ofthe Locator, to star, running a 

- C ''™^^ 

us„s computer and sends these back to the Creditor's Toolbox for future reference. 

SI Anotoeroftoe items which may have been downioaded into User's computer is a Stupid 
agent which directs tW. computer to toe most recen, cilen, software avai.abie, either from 
the Creditor Toolbox or from , Security Management Website. This stupid agen, is activated a, 
'be beginning of any purchase transaction, to ensure toa, User has toe most recen, agents to 
Perm,, toe transaction to wort,, and opbonaiiy to provide Creditor Toolbox or toe Security 
Management Website w„h an opportunity to vertfy toa, certain identifying facto, o, User's 
system have no, changed, as a security spolcheck. 

A participating Merchant agrees to participate in toe Safe system ofthe invention 



and does 
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so by incorporadng source code provided by .be Securi* Program Manager i„«o „is "Seiec, 
Payment Meow Web page. THis „ crea,es an op«,on ,or payment using , h e Sate system o, 



user's IP 



.be invention, vrbich wben ac.tva.ed by a user, causes Merchant server ,o take 
address and send , reguea, ,o C re d,.or Tooibox asking for vennca.ion ,a, .ba. user having ,P 
address provtded ,s actuaiiy onttne and ptacing an order bavtng a certain purchase vatue and 
(b» .be. user bas a sufncien, cred,. ,im,„o ptace an order of ,ba« vatue and (opttonaiiy, ,ha, 
Creditors agreed bonor a demand for paymentofsaid purchase. Tbe futt cycie of a 
transaction wi „ be described more comply and ,n greater detaii bereinbetow. 

W„b refenance „ FK, 7 , » can be seen ,ba. a typica, purcbasing session in this exempt 
embodiment proceeds as follows: 

» User PC goes online and user points hls brows9r to ofj ^ 

using any W, b Browser Program; ^ ^ . ^ ^ ^ 

se.ec«e mercbandise ,o purchase which genera.es a purchase regues, to Merchant* 
server, all in a manner well known iri the art. 

•nctudes , .ransacuon number, me vaiue of tbe onder, and asks for btiitng i„ tomatlon 
sb,pping information. At some poin,, user is offenad ,o indicafe bar desired metbod of 
payment and seiects option bu„o„ which designa.es .be Safe paymen, pian o, .be presen. 
invention, e.g. "SAFE OPTION". 

O Seiecion of tbe "Safe Op,ion" generates a message back to Mercban,, „ hIch 
incudes use,s ,P address and ,ns,ruc<s Merchants server .o forward a regues. «o 
Creditor, Tooibox ,0 confirm tba. tbe user a, .be ,P address provided is ,a, actuaiiy and 
*c.ive,y oniineand hying .o make tbis purchase, and M «ba, .be user a, tbe iP address bas 
die necessary credit to make such a purchase. 
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fl "P.nre M ip,of«„ereau.«,rom Merc„.„r. serve, Tooibox immediate* sand, , 
— s,o„ ,o «h. ,P address „ by Mereham . s seryer transmfesion ^ 

mes which w search for, ^ a „ d rMo , he U1D m ^ pc (o sm j( fe ^ ^ 

PC ,s a machine re9lslered ,„ the system) and „ wh|ch senerate a up 

.he regis,,™, user's browser ,o maxe sure tha, « ransact|on „ ^ fcy ^ ^ 

*,s,em registered use, Th B , aovlses „ at . ^ , ^ 

- being quests. andasRs for confirmat|on or ^ ^ ^ ^ ^ 

<raneac,„„, user can aCiveiv Rejec, bv press,n a a Rejec, button or 8lmply by 
respond within a predetermined defaui, ,,m.. To accept „, ^ _ ^ 

provide h,s user password and submit tbo form baC to «h. T.o,box. Tbe form is 
accompanied transparent by ,he ttngerprm, conalmn( , „ e „ and ^ ^ 

idembVinn button decked and ex.rac.od from user, PC b V «he .ransmission from 
the Toolbox. 

e. if acc.p ted by „ ser , tnen Too , bM cbecs debase .0 ma k e sure use,s credH „„,, „ not 

exceerfed anr. se„ d s a co d e d connrmadon .0 Mercbanrs s.™ ,ba. ,be .ransacon ,s 

M-'or by Credttor on bebaifo, user. Merchant then-sends HTML " 
message to a d », s , user fba. ,he iden«ified fransacfion haa been successful pressed. 

AS described hereinabove, „ user either acttveiy Reject or faiis to respond ,0 ,he Pop-up 
massage in a predetermined ttme period, for exampie, 2 minutes, the Pop-up message 
appears and Tooibox advises Merchants server ma, ,he , ra „sac,,on is no, acce P ,ed 
Op,iona„ y , provision oan be made ^ _ , ^ ^ 

- rejec, ,„ order wi,h preiudice, ,hus aierdng bo,h Tooibox and Secure Program Manager 

and .hereforeMerchanUha, some anemp, was made ,0 defraud Memhan, Obvious*, his ' 
Wiedge can p rov ,de grea, benefits ,„ aiding ,0 trac* down c y ber credit fmuds ahd inhibit 
criminal activity. 
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FIG,.? 

In anotner exemptary embodiments Cr9d „ or „„„ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ 

•ha, ,oca«o„ as Thus, a ban* which offers ^services ,o » oMine customers can a,so 
offer ,„em ,„, safety of the Safe transact system and method, whfch „ earned ou, by the 
Toolbox right on the bank's/ISP's premises. 



